Bugtraq mailing list archives
Re: setuid scripts in SunOS 4.1.x
From: Valdis.Kletnieks () vt edu (Valdis.Kletnieks () vt edu)
Date: Wed, 28 Sep 1994 12:22:03 +22306356
On Wed, 28 Sep 1994 01:02:48 EDT, John Hawkinson said:
Excuse me? When we say FIXING THE KERNEL, we MEAN DISABLING SETUID SCRIPTS. If you have some other reasonable mechanism, I'd be interested in hearing it...
Well, I have heard from some people who understand this rat's nest of race conditions that most, if not all, the holes can be closed if your kernel has proper support - basically, you need the /dev/fd file descriptor driver, and instead of simply exec()'ing the #! interpreter with the file as input (which is subject to a race condition), you launch the interpreter with a /dev/stdin already nailed down to the original (dev,inode) pair, thus prohibiting substitution on the fly. That's another mechanism, it's reasonable, but it's not 100% backward combatable... Valdis Kletnieks Computer Systems Engineer Virginia Tech
Current thread:
- Re: setuid scripts in SunOS 4.1.x, (continued)
- Re: setuid scripts in SunOS 4.1.x Colin Campbell (Sep 23)
- Re: setuid scripts in SunOS 4.1.x John Hawkinson (Sep 22)
- Re: setuid scripts in SunOS 4.1.x Karl Strickland (Sep 24)
- Re: setuid scripts in SunOS 4.1.x Fred Blonder (Sep 26)
- Re: setuid scripts in SunOS 4.1.x John Hawkinson (Sep 26)
- Re: setuid scripts in SunOS 4.1.x Harold van Aalderen (Sep 27)
- Re: setuid scripts in SunOS 4.1.x Rafi Sadowsky (Sep 27)
- Re: setuid scripts in SunOS 4.1.x Paul O'Donnell (Sep 27)
- Re: setuid scripts in SunOS 4.1.x Fred Blonder (Sep 27)
- Re: setuid scripts in SunOS 4.1.x John Hawkinson (Sep 27)
- Re: setuid scripts in SunOS 4.1.x Valdis.Kletnieks () vt edu (Apr 17)
- Re: setuid scripts in SunOS 4.1.x jmc () gnu ai mit edu (Sep 28)
- request Michel JACQUOT (Sep 29)
- Re: setuid scripts in SunOS 4.1.x Fred Blonder (Sep 28)
- Re: setuid scripts in SunOS 4.1.x John Hawkinson (Sep 28)
- Re: setuid scripts in SunOS 4.1.x John Hawkinson (Sep 22)
- Re: setuid scripts in SunOS 4.1.x Colin Campbell (Sep 23)
- Security Info (root broken) Pat Myrto (Sep 28)
- Re: Security Info (root broken) Valdis.Kletnieks () vt edu (Apr 18)
- Re: Security Info (root broken) Perry E. Metzger (Sep 28)
- Re: Security Info (root broken) pluvius (Sep 28)
- Re: Security Info (root broken) Charles R. Hoynowski (Sep 29)
- Re: Security Info (root broken) Christopher Klaus (Sep 28)